Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6230 (Rayzz Script)

BugsAlert Home > CVE-2007-6230 (Rayzz Script)
 
 

Directory traversal vulnerability in common/classes/class_HeaderHandler.lib.php in Rayzz Script 2.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the CFG[site][project_path] parameter.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6230

Learn more about CVE-2007-6230 (Rayzz Script)
 
Tags: cve-2007-6230 rayzz script

Related Items

      Sun JRE Applet Handling Two Vulnerabilities

      CVE-2008-5722 (sawstudio)

      Social Groupie "id" SQL Injection Vulnerability

      IE7 Transfer-Encoding: chunked allows RequestSplitting/Smuggling.

      FrSIRT - Debian Security Update Fixes Multiple OpenSSL Vulnerabilities

      CVE-2008-3209 (black_ice_document_imaging_sdk)

      5 Be My Valentine

 

Pixel